CVE Vulnerabilities

CVE-2007-3777

Published: Jul 15, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

avg7core.sys 7.5.0.444 in Grisoft AVG Anti-Virus 7.5.448 and Free Edition 7.5.446, provides an internal function that copies data to an arbitrary address, which allows local users to gain privileges via arbitrary address arguments to a function provided by the 0x5348E004 IOCTL for the generic DeviceIoControl handler.

Affected Software

NameVendorStart VersionEnd Version
Avg_antivirusGrisoft7.5.446 (including)7.5.446 (including)
Avg_antivirusGrisoft7.5.448 (including)7.5.448 (including)

References